Security

Security scanning and vulnerability detection

Showing 265-288 of 2236 skills
cosai-oasis

software-security

by cosai-oasis

A software security skill that integrates with Project CodeGuard to help AI coding agents write secure code and prevent common vulnerabilities. Use this skill when writing, reviewing, or modifying code to ensure secure-by-default practices are followed.

Auth 259 5mo ago
garrytan

cso

by garrytan

Chief Security Officer mode. Infrastructure-first security audit: secrets archaeology, dependency supply chain, CI/CD pipeline security, LLM/AI security, skill supply chain scanning, plus OWASP Top 10, STRIDE threat modeling, and active verification. Two modes: daily (zero-noise, 8/10 confidence gate) and comprehensive (monthly deep scan, 2/10 bar). Trend tracking across audit runs. Use when: "security audit", "threat model", "pentest review", "OWASP", "CSO review".

Auth 123.5K 4mo ago
vudovn

vulnerability-scanner

by vudovn

Advanced vulnerability analysis principles. OWASP 2025, Supply Chain Security, attack surface mapping, risk prioritization.

Auth 7.8K 6mo ago
HoangNguyen0403

Android Legacy Security

by HoangNguyen0403

Standards for Intents, WebViews, and FileProvider

Processing 533 6mo ago
getsentry

sentry-security

by getsentry

'Sentry-specific security review based on real vulnerability history. Use when reviewing Sentry endpoints, serializers, or views for security issues. Trigger keywords: "sentry security review", "check for IDOR", "access control review", "org scoping", "cross-org", "security audit endpoint".'

Auth 44.3K 5mo ago
zebbern

AWS Penetration Testing

by zebbern

This skill should be used when the user asks to "pentest AWS", "test AWS security", "enumerate IAM", "exploit cloud infrastructure", "AWS privilege escalation", "S3 bucket testing", "metadata SSRF", "Lambda exploitation", or needs guidance on Amazon Web Services security assessment.

CLI Tools 4.4K 6mo ago
zebbern

Pentest Checklist

by zebbern

This skill should be used when the user asks to "plan a penetration test", "create a security assessment checklist", "prepare for penetration testing", "define pentest scope", "follow security testing best practices", or needs a structured methodology for penetration testing engagements.

Code Review 4.4K 6mo ago
zebbern

SQL Injection Testing

by zebbern

This skill should be used when the user asks to "test for SQL injection vulnerabilities", "perform SQLi attacks", "bypass authentication using SQL injection", "extract database information through injection", "detect SQL injection flaws", or "exploit database query vulnerabilities". It provides comprehensive techniques for identifying, exploiting, and understanding SQL injection attack vectors across different database systems.

Processing 4.4K 6mo ago
zebbern

SSH Penetration Testing

by zebbern

This skill should be used when the user asks to "pentest SSH services", "enumerate SSH configurations", "brute force SSH credentials", "exploit SSH vulnerabilities", "perform SSH tunneling", or "audit SSH security". It provides comprehensive SSH penetration testing methodologies and techniques.

CLI Tools 4.4K 6mo ago
bitwize-music-studio

explicit-checker

by bitwize-music-studio

Scans lyrics for explicit content and verifies that explicit flags match actual content. Use before Suno generation or release to ensure accurate content ratings.

Refactoring 366 5mo ago
vudovn

web-design-guidelines

by vudovn

Review UI code for Web Interface Guidelines compliance. Use when asked to "review my UI", "check accessibility", "audit design", "review UX", or "check my site against best practices".

Accessibility 7.8K 5mo ago
JoelLewis

reconciliation

by JoelLewis

"Reconciliation operations: position/cash/transaction matching with tolerance thresholds, three-way reconciliation (PMS/custodian/clearing), break identification (timing, pricing, corporate action, stock split/merger/DRIP), tolerance rules, STP rates (95-99% position, 85-95% transaction), auto-resolution, cost basis and tax lot matching, accrued income reconciliation, multi-custodian data normalization (Schwab, Fidelity, Pershing), ex-date processing, custodian feed formats, reconciliation scheduling, regulatory compliance (SEC Rule 204-2, ERISA, SOC 1/SOC 2, books and records), 1099-B accuracy, reconciliation automation platforms (Arcesium, Duco, Advent Geneva)."

Code Review 153 5mo ago
rmyndharis

attack-tree-construction

by rmyndharis

Build comprehensive attack trees to visualize threat paths. Use when mapping attack scenarios, identifying defense gaps, or communicating security risks to stakeholders.

Code Review 1.2K 6mo ago
rmyndharis

blockchain-developer

by rmyndharis

Build production-ready Web3 applications, smart contracts, and

Legal 1.2K 6mo ago
rmyndharis

anti-reversing-techniques

by rmyndharis

Understand anti-reversing, obfuscation, and protection techniques encountered during software analysis. Use when analyzing protected binaries, bypassing anti-debugging for authorized analysis, or understanding software protection mechanisms.

Auth 1.2K 6mo ago
rmyndharis

code-review-excellence

by rmyndharis

Master effective code review practices to provide constructive feedback, catch bugs early, and foster knowledge sharing while maintaining team morale. Use when reviewing pull requests, establishing review standards, or mentoring developers.

Code Review 1.2K 6mo ago
zebbern

Pentest Commands

by zebbern

This skill should be used when the user asks to "run pentest commands", "scan with nmap", "use metasploit exploits", "crack passwords with hydra or john", "scan web vulnerabilities with nikto", "enumerate networks", or needs essential penetration testing command references.

API Dev 4.4K 6mo ago
zebbern

Ethical Hacking Methodology

by zebbern

This skill should be used when the user asks to "learn ethical hacking", "understand penetration testing lifecycle", "perform reconnaissance", "conduct security scanning", "exploit vulnerabilities", or "write penetration test reports". It provides comprehensive ethical hacking methodology and techniques.

Auth 4.4K 6mo ago
zebbern

Burp Suite Web Application Testing

by zebbern

This skill should be used when the user asks to "intercept HTTP traffic", "modify web requests", "use Burp Suite for testing", "perform web vulnerability scanning", "test with Burp Repeater", "analyze HTTP history", or "configure proxy for web testing". It provides comprehensive guidance for using Burp Suite's core features for web application security testing.

API Dev 4.4K 6mo ago
aaron-he-zhu

technical-seo-checker

by aaron-he-zhu

'Use when the user asks to "technical SEO audit", "check page speed", "crawl issues", "Core Web Vitals", "site indexing problems", "my site is slow", "Google cannot crawl my site", "mobile issues", or "indexing problems". Performs technical SEO audits covering site speed, crawlability, indexability, mobile-friendliness, security, and structured data. Identifies technical issues preventing optimal search performance. For content and heading element issues, see on-page-seo-auditor. For link architecture, see internal-linking-optimizer.'

Code Review 97 5mo ago
aaron-he-zhu

domain-authority-auditor

by aaron-he-zhu

'Use when the user asks to "audit domain authority", "domain trust score", "CITE audit", "how authoritative is my site", "domain credibility check", "is my domain trustworthy", or "domain credibility score". Runs a full CITE 40-item domain authority audit, scoring domains across 4 dimensions with weighted scoring by domain type. Produces a detailed report with per-item scores, dimension analysis, veto checks, and a prioritized action plan. For content-level assessment, see content-quality-auditor. For link profile details, see backlink-analyzer.'

Code Review 97 5mo ago
proffesor-for-testing

QE Security Compliance

by proffesor-for-testing

"Security auditing, vulnerability scanning, and compliance validation for OWASP, SOC2, GDPR, and other standards."

Code Review 418 5mo ago
vudovn

parallel-agents

by vudovn

Multi-agent orchestration patterns. Use when multiple independent tasks can run with different domain expertise or when comprehensive analysis requires multiple perspectives.

Agents 7.8K 5mo ago
vudovn

code-review-checklist

by vudovn

Code review guidelines covering code quality, security, and best practices.

Code Review 7.8K 6mo ago